Incident Response Lead
- TFS
- CPT
- Risk Management
- Incident Response
- SIEM
- Splunk
- ISO 27001
- NIST
- SOX
- Regulatory Compliance
- CISSP
- GCIH
- GSEC
- OSCP
- CySA+
- Pension
Overview
Who we are
Collaborative. Respectful. A place to dream and do. These are just a few words that describe what life is like at Toyota. As one of the worldâs most admired brands, Toyota is growing and leading the future of mobility through innovative, high-quality solutions designed to enhance lives and delight those we serve. Weâre looking for talented team members who want to Dream. Do. Grow. with us.
An important part of the Toyota family is Toyota Financial Services (TFS), the finance and insurance brand for Toyota and Lexus in North America. While TFS is a separate business entity, it is an essential part of this world-changing company- delivering on Toyota's vision to move people beyond what's possible. At TFS, you will help create best-in-class customer experience in an innovative, collaborative environment.
Â
Toyota does not offer support or sponsorship of job applicants for employment-based visas or any other work authorization for this role now or in the future. You must have the right to work in the United States and not require Toyota support or sponsorship for immigration-related employment (e.g., H-1B, O-1, E-3, H-1B1, TN, F-1 OPT, F-1 STEM, OPT, F-1 CPT, âjob flexibility benefitsâ [also known as I-140 or Adjustment of Status portability], etc.) now or in the future. You should not apply for this role if you will require Toyota to assist with immigration support or sponsorship now or in the future.
Who we're looking for
Toyota Financial Services (TFS) Technology team is seeking an experienced and proactivePost Incident Review Lead to oversee and drive the post-incident review process for cybersecurity events and incidents. This leadership role is responsible for managing the PIR team, ensuring thorough analysis of security incidents, driving continuous improvement in post incident review, and collaborating with senior stakeholders to strengthen Toyotaâs cybersecurity posture.Â
What you'll be doing
- Lead and manage the Post Incident Review team, providing guidance, mentorship, and performance management to senior and junior analystsÂ
- Oversee all post-incident investigations to ensure comprehensive root cause analysis, impact assessment, and actionable remediation recommendationsÂ
- Collaborate closely with Security Operations, IT, Risk Management, Business Units, and executive leadership to communicate findings and drive resolutionÂ
- Develop and enhance post-incident review frameworks, methodologies, and tools to improve efficiency and effectiveness of incident analysisÂ
- Facilitate lessons learned sessions and ensure key insights are integrated into incident response playbooks, SOPs, and training programsÂ
- Identify systemic risks and trends from incident data to inform strategic risk mitigation and security program enhancementsÂ
- Ensure compliance with regulatory requirements and internal policies through detailed documentation and audit supportÂ
- Drive continuous improvement initiatives in incident response processes based on evolving threat landscape and industry best practicesÂ
- Represent the PIR function in cross-functional security governance forums and contribute to enterprise-wide cybersecurity strategyÂ
What you bring
- Bachelorâs degree in computer science, Information Security, or related field, or equivalent experienceÂ
- 7+ years of progressive experience in Information Security with significant exposure to incident response and post-incident review activitiesÂ
- Proven leadership experience managing technical and/or non-technical teams in a cybersecurity environmentÂ
- Strong expertise in root cause analysis, incident timeline reconstruction, and application of frameworks such as MITRE ATT&CKÂ
- Deep understanding of Cyber Threat TTPs, threat hunting techniques, and enterprise SIEM/security analytics platforms (e.g., Splunk, Exabeam)Â
- Excellent communication skills with ability to translate complex technical findings for diverse audiences including executivesÂ
- Experience developing and refining SOPs, playbooks, and training materials for post incident review or incident response programsÂ
- Familiarity with security frameworks such as ISO 27001, NIST, SOX, and regulatory compliance requirementsÂ
Added bonus if you have
- Master's degree in Cyber Security, Computer Science, Statistics, or related field
- Experience in the financial services, banking, or insurance industry
- Relevant certifications (e.g., CISSP, GCIH, GSEC, OSCP, CYSA+)
What weâll bring
During your interview process, our team can fill you in on all the details of our industry-leading benefits and career development opportunities. A few highlights include:Â
⢠A work environment built on teamwork, flexibility, and respect
⢠Professional growth and development programs to help advance your career, as well as tuition reimbursement
⢠Team Member Vehicle Purchase Discount
⢠Toyota Team Member Lease Vehicle Program (if applicable)
⢠Comprehensive health care and wellness plans for your entire family
⢠Toyota 401(k) Savings Plan featuring a company match, as well as an annual retirement contribution from Toyota regardless of whether you contribute (if applicable)
⢠Paid holidays and paid time off
Belonging at Toyota
Our success begins and ends with our people. We embrace all perspectives and value unique human experiences. Respect for all is our North Star.
Applicants for our positions are considered without regard to race, ethnicity, national origin, sex, sexual orientation, gender identity or expression, age, disability, religion, military or veteran status, or any other characteristics protected by law.
Have a question, need assistance with your application or do you require any special accommodations? Please send an email totalent.acquisition@toyota.com.
Incident Response Lead ¡ Toyota Financial Services, KINTO and KINTO JOIN